omni-infra-provider-bare-metal 0.10.2 (2026-07-02)
Welcome to the v0.10.2 release of omni-infra-provider-bare-metal!
Please try out the release binaries and report any issues at https://github.com/siderolabs/omni-infra-provider-bare-metal/issues.
- Oguz Kilcan
3 commits
This release has no dependency changes
Previous release can be found at v0.10.1
omni-infra-provider-bare-metal 0.10.1 (2026-05-27)
Welcome to the v0.10.1 release of omni-infra-provider-bare-metal!
Please try out the release binaries and report any issues at https://github.com/siderolabs/omni-infra-provider-bare-metal/issues.
The provider now honors power-off requests from Omni. When Omni requests a machine to be powered off, the provider acknowledges the request and avoids automatically powering the machine back on due to cluster allocation. The request is honored until the machine goes through a deallocation cycle, at which point it is considered stale and the provider resumes normal power management. The provider also reports the currently honored request back to Omni, allowing Omni to distinguish intentional power-off from unexpected disconnects.
This release updates the dependency on Talos to v1.13.0.
- Andrey Smirnov
- Mateusz Urbanek
- Noel Georgi
- Mickaël Canévet
- Edward Sammut Alessi
- Utku Ozdemir
- Orzelius
- Zadkiel AHARONIAN
- Benoît Knecht
- David Orman
- Dharsan Baskar
- Dominik Pitz
- Erwan Leboucher
- Fritz Schaal
- Kevin Tijssen
- Laura Brehm
- Maja Bojarska
- Nico Berlee
- Quentin Joly
- Spencer Smith
- pythoner6
8 commits
c93c09bfix: write boot filename to BOOTP header for U-Boot ProxyDHCPe6da964chore: bump Go and deps, rekres, fix linters5b57fe3release(v0.10.0): prepare releasea3694fbchore: bump image-factory and talos-metal-agent4d13952chore: rekrese27fd88chore: bump deps, rekres, Talos v1.13.0fed52d9feat: honor power-off requests from omni2730cf3chore: accept eula in integration tests
2 commits
22 commits
ccffefcrelease(v1.2.0): prepare release4abeff4feat: add /talosctl/:version endpoint to list downloadable talosctls405b488feat(i18n): add french localec6ad082feat(registry): resolve latest tag to stable version471706dchore: drop update to talos main tests403cd5afix: centralize schematic ownership enforcementf1cceeefeat: implement authentication support81f9312release(v1.1.0): prepare release1b834b7feat: add SHA-256 and SHA-512 checksum frontende775c36feat: upgrade tailwind to v4bb27d39feat: update Talos to v1.13.0-rc.02a59890fix: gsa signer pull during verifyfbc302ffix: support insecure registries for signature bundles8e7d10efeat: add support for google service account signing74afd80fix: set correct Content-Type when downloading images8372fe8feat: add SPDX frontendb379bf2feat: switch schematic cache to LRU and negative TTL0450038chore: remove deuplicate k8s-down ci step470cb2fchore: switch to large runners713fc6efix: memory usage when building images0a25274fix: excessive memory usage0f9eb22feat: update machinery doc links
192 commits
befeda7cbrelease(v1.13.3): prepare releasef4d451054feat(ci): rotate credentials01b434870fix: guard apply config API calla42c37f24feat(machined): support instance tags on Akamaid62d54ca7fix: memorymodules resource reportingb673b4be7fix: bump Go golang.org/x modules19755ad14feat: add bnxt_re module to the rootfs532bc6baafix: relax hostname config validation3bbd3ed35fix: bump Kubernetes to 1.36.1 in one more place472b9d991feat: update default Kubernetes version to 1.36.16d53ce0d5chore(ci): fix cloud image upload job name5633c7791fix: rework how scheduler config is marshaled52f056084fix: restore some shared (and some lower tier slave) mount propagation9de3c12d9fix: image verification issue with registry.k8s.io7dc716d85feat: redact more machine config secrets and audit redactorsd5448c60dchore(ci): try fixing homebrew actionef9f0bf02docs: drop controlplane endpoint examples7ee3e787bfeat: update Linux to 6.18.33e99744badfix: update containerd to 2.2.4c5d7c6536release(v1.13.2): prepare release7df617aa7release(v1.13.1): prepare release09ead22a3test: relax kernel-default routing rule assertion817609677feat: update Go to 1.26.3a5f32abdafix: normalize source name for syft consistencyf8298948afeat: bump in-toto indirect dependencyded9a2d78feat: update kernel to 6.18.29755628239fix: handle empty GCP operation errorse7645ba1cfix: clarify documentation for image verification patterne85d01a07fix: skip reserved routing rule prioritiesc5a81f2ccfeat: update etcd to 3.6.1138ca2bca6fix: add missing kernel modules in rootfsdc30ad327fix: preserve DHCP DNS serversd8e32fa73fix: stale discovered volume children80c110c87fix: re-enable kexec on arm64bd9ac044efix: provide proper AWS platform metadata549f3c0b4fix: panic in Kubernetes manifest sync29eb6651dfix(ci): zfs test4b36fc9c2fix: deadlock in the makefs ext4 with populated sourcefdf4f9f6cfix: do not pick up a system disk from a loop device4ff29cc9ffix(talosctl): protect k8sNames map writes with mutexff53434c9fix: mount throws EPERM on virtiofs with SELinux16cc0a99cfix: drop explicit platform matcherddb631abafix: bump go-kmsg to fix the timestamp drift595470849fix: make lacp active nilable879e31a65test: fix flaky testsef1d9ffc3fix: reset the ticker when the KubeSpan is disabled/enabledce89d6727fix: replace Canal manifest with a more recent oneb9e9c6579release(v1.13.0): prepare release5e2fc260afix: revert add extraArgs from service-account-issuer17448fcd2fix: revert use append instead of prepend in service-account-issuer4b9fe000ffeat: add quirk for talosctl factory downloadsf62c33113refactor: make all controller unit-test follow modern patternscd317d533feat: support auth for Image Factory in cluster create92ca9e16ffeat: update Kubernetes to v1.36.0e9afea74dtest: fix OOM test flaked34a61c8dfix(talosctl): ensure uncordon runs after reboot/upgrade errorsf9531d352test: fix a flake in the manifest sync test9f04f2c4efix: watch kubelet's kubeconfig and time out for cache syncf3bab2bafchore(ci): nvidia update helm valuesd4d018b54fix: propagate route table down to the resourceffa0bcf61chore(ci): bump gpu operator version8035e6e49fix: do not flip machine stage to rebooting during shutdown10606bdfefix: boot entry detection23393a5eafix: zfs extensions testa922d1540fix: return failed precondition on upgrade when not installed252799a00fix: reduce memory dashboard usage8180cb11cfix: wrong slot of encryption key was loggedb6bcd47e6feat: update Flannel to 0.28.4370c035abfix: audit trustd code for security3e1c6fd84chore: bump container registry librarydacd73313chore: update sign images to support image name suffix1a519a410test: allow more tests to run in FIPS strict modecb969aa9ffeat: update Linux to 6.18.241f949d9a5release(v1.13.0-rc.0): prepare release929ab7165fix(machined): clear stale bond ARP/NS targets on decode730937eeechore: bump tools0f9d4b5b9feat: update Kubernetes 1.36.0-rc.141e6866fdfix: encode extra args fields in resources with new id5feeab90dchore(ci): nvidia try UKI bootcd88cbd0cchore: bump tools53609713ffix: upgrade API in maintenance mode (legacy)2de7fb60drefactor: allow overriding out image name suffix384b189a5feat: update Kubernetes to 1.36.0-rc.09b8c1891bfix: panic in reading PCR values67a34a6ebfeat(ci): add nvidia arm64 matrixcd73b4a82feat: bump go to 1.26.277406ec31fix: validate hostDNS forwarding requires hostDNS to be enabled7d7776dcafix: handle boot failure6dc97e8aafix(talosctl): always use default GRPC dial optionsdb2c007eefix: create correct blackhole routes for IPv46f8462849refactor: propagate NAME properly, allow to set on build6a0ec46b5feat: add dis-vulncheck tool4c79bd815chore: bump some tool dependenciescd8d70fb9fix: set the minimum TLS version to 1.3fe5b849ecrefactor: remove manual shell completion and replace with cobra completionfef5ef49efeat: allow more nvidia and nvme files from extensions33b89cff7feat: allow glibc ld files in etc9be7bc025fix: don't set xattrs while decompressing extensions9cc735588feat: add client-side Kubernetes node drain to reboot and upgrade commands128c2c287feat: update Flannel to v0.28.202d84f582fix: handle ISOs with zeroes in volume labels70c356bfdfeat: add flag to force fallback to legacy upgrade8499579f4fix: add os:meta:writer role to the dashboarddc59a7e94fix: drop talosctl installf7be2c598feat: add resource view to talosctl dashboarda47b76618fix: unseal with "slow" TPM3c79b432afix: drop unused type from ExternalVolume schema38d391e9dfix: always grow disksf0c5cb517fix: add metal-agent mode to runtime capabilities213ecf2a5release(v1.13.0-beta.1): prepare releaseabc0ddf11feat: bump musl to 1.2.6fcdfeab2bfix: incorrect route source for on-link routesa8f2a0af7feat: update NVIDIA production drivers to 595.58.03ccf1e0c27test: fix the PKI mismatch test flake7a9467306test: fix cron failures for provision-1 & provision-2797815209fix: allow blockdevice wipe in maintenance modeefc76f0bftest: fix the flakes in tests with trusted roots7fa16b497test: bump memory for Flannel netpolicy tests576c26948feat: add --platform=all support to image cache-createceec42f2afeat: update Linux to 6.18.19, CNI to 1.9.1902c78a17test: improve maintenance API provision testsa4b0cbc49feat: validate luks headers for tampering281584b88chore: update go-kubernetes libraryb86360790fix: add symlinks nvidia-ctk and nvidia-cdi-hook in /usr/bind82fada75fix: unset rlimits for extension services76931f409feat: enforce PID check on connections to services over file socketsdf4e0e7f5feat: update etcd to 3.6.908ba425e6feat: update Kubernetes to 1.36.0-beta.01cb2a8b30fix: update diff library to v1.0.15e171a3detest: fix the apid test against AWS/GCPf98e76f8dfix: panics in diff algorithmsa544aea84release(v1.13.0-beta.0): prepare releasef36f6ef54chore: update pkgs and toolsb7d70cf62feat: unify maintenance and regular APIs13d6b4a03fix: trim down cosign dependencies5c39a8581fix: drop aws & azure KMS APIs from the machined build3d059754cfix: accept image cache volume encryption configd2661d253fix: apparmor parser config files13ef0cfc9fix: unmount pseudo-late recursivelye9d45671afix: panic in hardware.SystemInfoControllera728bbd89fix: validate missing apiVersion in config document decoderc8a674afafix: pull in a fix for dmesg timestampse7e21fe8efeat: bump dependencies6bb5cf57afeat: implement routing rules supporta0b9d6e77feat: bump kernel with uhci_hcd driver1f0d2da39feat: update containerd to 2.2.2cff0f5782fix(machined): support USERDATA legacy fallback in OpenNebula driver5d3a326c8feat(machined): add ONEGATE proxy route and deterministic interface iteration for OpenNebula3bec5cc7bfeat(machined): inherit IP6_METHOD from METHOD in OpenNebula driver4f4ec9806fix(machined): align OpenNebula hostname precedence with reference4d0244ddffeat(machined): add IPv6 alias address support for OpenNebula (ETH*_ALIAS*_IP6)5bb896230feat(machined): support ETH*_IP6_METHOD (static/dhcp/auto/disable) for OpenNebula469db18d3refactor(machined): extract per-interface IPv4 helper in OpenNebula driverae61f5a5efix(machined): use ParseFQDN for hostname parsing in OpenNebula7adbbd2f8feat(machined): support per-interface route metric for OpenNebula (ETH*_METRIC)196658c41feat(machined): add network alias support for OpenNebula (ETH*_ALIAS*)e96766e81feat(machined): merge global and per-interface DNS for OpenNebula23c99a3cbfeat(machined): add static routes support via ETH*_ROUTES for OpenNebulaad3c59aadfix: prevent stale discovered volumes readsfc9749b9efeat: pull in kernel with preemptible kernelc14179e78chore(ci): update nvidia test to use gpu-operatorda70cedfdrefactor: drop apid file socketee53a18c8fix: stop pulling wrong platform for images17335107bfix: use non-sensitive resource for health check precondition2fb6f6a16feat: add symlinks needed by gpu-operatorf2bae55b8feat: enable container device interface451b13c1bfeat: update Linux to 6.18.16a02d578fafeat: add support for mirroring image signatures57599fb87fix: skip some readiness checks when the CNI is disablede6d8669fbfeat: update Go to 1.26.17f2eb4856feat: add image verification endpoint1e4cd20d2feat: add talosctl install command and upgrade via LifecycleService275fa351ctest: add integration tests for LifecycleService upgrade path15a5ec998feat: implement new install/upgrade API720a2148afix: correctly calculate end ranges for nftables sets95287d2dbfix: environment suite failures10f49ca91feat: add trusted roots generation to stdpatches55b872185fix: use correct dhcp option for unicast dhcp renewal58e006461feat: update Kubernetes to 1.36.0-alpha.2ebcfafd4efeat: update Linux to 6.18.150ab84c2a1fix: ignore image digest when doing upgrade-k8sd417d68e0feat: bring in new ssa logic0bb6413fffix: do not fail on RO virtiofsbf2cd0a85feat: update Linux to 6.18.14ad29417aefix(machined): opennebula: process ETH*_ vars regardless of NETWORK context flagb551cb9b8feat: allow dashboard mouse supportbfb98a9cafeat: bump kube-network-policy to v1.0.0000c18d53feat: implement blackhole route configcc636f1ddfix: image cache test fails with 'no space left on device'f0c51b280feat: implement correct config patching for extraArgs fields1da2b63abfeat: multi-doc support for configuring vrfsc1d0a3360fix: patch with delete for LinkConfigs
3 commits
- github.com/bougou/go-ipmi v0.8.1 -> v0.8.3
- github.com/cosi-project/runtime v1.14.0 -> v1.16.1
- github.com/insomniacslk/dhcp 5adc3eb26f91 -> 11b94ed970f2
- github.com/klauspost/compress v1.18.4 -> v1.18.6
- github.com/siderolabs/crypto v0.6.4 -> v0.6.5
- github.com/siderolabs/image-factory v1.0.3 -> v1.2.0
- github.com/siderolabs/omni/client v1.5.8 -> v1.8.0
- github.com/siderolabs/talos v1.13.0-alpha.2 -> v1.13.3
- github.com/siderolabs/talos-metal-agent v0.1.4 -> v0.1.5
- github.com/siderolabs/talos/pkg/machinery 58e006461d30 -> v1.13.3
- github.com/stmcginnis/gofish v0.21.4 -> v0.21.6
- go.uber.org/zap v1.27.1 -> v1.28.0
- google.golang.org/grpc v1.80.0 -> v1.81.1
Previous release can be found at v0.9.0
omni-infra-provider-bare-metal 0.10.0 (2026-04-28)
Welcome to the v0.10.0 release of omni-infra-provider-bare-metal!
Please try out the release binaries and report any issues at https://github.com/siderolabs/omni-infra-provider-bare-metal/issues.
The provider now honors power-off requests from Omni. When Omni requests a machine to be powered off, the provider acknowledges the request and avoids automatically powering the machine back on due to cluster allocation. The request is honored until the machine goes through a deallocation cycle, at which point it is considered stale and the provider resumes normal power management. The provider also reports the currently honored request back to Omni, allowing Omni to distinguish intentional power-off from unexpected disconnects.
This release updates the dependency on Talos to v1.13.0.
- Andrey Smirnov
- Mateusz Urbanek
- Noel Georgi
- Mickaël Canévet
- Edward Sammut Alessi
- Orzelius
- Utku Ozdemir
- Zadkiel AHARONIAN
- Benoît Knecht
- David Orman
- Dharsan Baskar
- Dominik Pitz
- Fritz Schaal
- Kevin Tijssen
- Laura Brehm
- Nico Berlee
- Quentin Joly
- Spencer Smith
- pythoner6
5 commits
22 commits
ccffefcrelease(v1.2.0): prepare release4abeff4feat: add /talosctl/:version endpoint to list downloadable talosctls405b488feat(i18n): add french localec6ad082feat(registry): resolve latest tag to stable version471706dchore: drop update to talos main tests403cd5afix: centralize schematic ownership enforcementf1cceeefeat: implement authentication support81f9312release(v1.1.0): prepare release1b834b7feat: add SHA-256 and SHA-512 checksum frontende775c36feat: upgrade tailwind to v4bb27d39feat: update Talos to v1.13.0-rc.02a59890fix: gsa signer pull during verifyfbc302ffix: support insecure registries for signature bundles8e7d10efeat: add support for google service account signing74afd80fix: set correct Content-Type when downloading images8372fe8feat: add SPDX frontendb379bf2feat: switch schematic cache to LRU and negative TTL0450038chore: remove deuplicate k8s-down ci step470cb2fchore: switch to large runners713fc6efix: memory usage when building images0a25274fix: excessive memory usage0f9eb22feat: update machinery doc links
145 commits
b9e9c6579release(v1.13.0): prepare release5e2fc260afix: revert add extraArgs from service-account-issuer17448fcd2fix: revert use append instead of prepend in service-account-issuer4b9fe000ffeat: add quirk for talosctl factory downloadsf62c33113refactor: make all controller unit-test follow modern patternscd317d533feat: support auth for Image Factory in cluster create92ca9e16ffeat: update Kubernetes to v1.36.0e9afea74dtest: fix OOM test flaked34a61c8dfix(talosctl): ensure uncordon runs after reboot/upgrade errorsf9531d352test: fix a flake in the manifest sync test9f04f2c4efix: watch kubelet's kubeconfig and time out for cache syncf3bab2bafchore(ci): nvidia update helm valuesd4d018b54fix: propagate route table down to the resourceffa0bcf61chore(ci): bump gpu operator version8035e6e49fix: do not flip machine stage to rebooting during shutdown10606bdfefix: boot entry detection23393a5eafix: zfs extensions testa922d1540fix: return failed precondition on upgrade when not installed252799a00fix: reduce memory dashboard usage8180cb11cfix: wrong slot of encryption key was loggedb6bcd47e6feat: update Flannel to 0.28.4370c035abfix: audit trustd code for security3e1c6fd84chore: bump container registry librarydacd73313chore: update sign images to support image name suffix1a519a410test: allow more tests to run in FIPS strict modecb969aa9ffeat: update Linux to 6.18.241f949d9a5release(v1.13.0-rc.0): prepare release929ab7165fix(machined): clear stale bond ARP/NS targets on decode730937eeechore: bump tools0f9d4b5b9feat: update Kubernetes 1.36.0-rc.141e6866fdfix: encode extra args fields in resources with new id5feeab90dchore(ci): nvidia try UKI bootcd88cbd0cchore: bump tools53609713ffix: upgrade API in maintenance mode (legacy)2de7fb60drefactor: allow overriding out image name suffix384b189a5feat: update Kubernetes to 1.36.0-rc.09b8c1891bfix: panic in reading PCR values67a34a6ebfeat(ci): add nvidia arm64 matrixcd73b4a82feat: bump go to 1.26.277406ec31fix: validate hostDNS forwarding requires hostDNS to be enabled7d7776dcafix: handle boot failure6dc97e8aafix(talosctl): always use default GRPC dial optionsdb2c007eefix: create correct blackhole routes for IPv46f8462849refactor: propagate NAME properly, allow to set on build6a0ec46b5feat: add dis-vulncheck tool4c79bd815chore: bump some tool dependenciescd8d70fb9fix: set the minimum TLS version to 1.3fe5b849ecrefactor: remove manual shell completion and replace with cobra completionfef5ef49efeat: allow more nvidia and nvme files from extensions33b89cff7feat: allow glibc ld files in etc9be7bc025fix: don't set xattrs while decompressing extensions9cc735588feat: add client-side Kubernetes node drain to reboot and upgrade commands128c2c287feat: update Flannel to v0.28.202d84f582fix: handle ISOs with zeroes in volume labels70c356bfdfeat: add flag to force fallback to legacy upgrade8499579f4fix: add os:meta:writer role to the dashboarddc59a7e94fix: drop talosctl installf7be2c598feat: add resource view to talosctl dashboarda47b76618fix: unseal with "slow" TPM3c79b432afix: drop unused type from ExternalVolume schema38d391e9dfix: always grow disksf0c5cb517fix: add metal-agent mode to runtime capabilities213ecf2a5release(v1.13.0-beta.1): prepare releaseabc0ddf11feat: bump musl to 1.2.6fcdfeab2bfix: incorrect route source for on-link routesa8f2a0af7feat: update NVIDIA production drivers to 595.58.03ccf1e0c27test: fix the PKI mismatch test flake7a9467306test: fix cron failures for provision-1 & provision-2797815209fix: allow blockdevice wipe in maintenance modeefc76f0bftest: fix the flakes in tests with trusted roots7fa16b497test: bump memory for Flannel netpolicy tests576c26948feat: add --platform=all support to image cache-createceec42f2afeat: update Linux to 6.18.19, CNI to 1.9.1902c78a17test: improve maintenance API provision testsa4b0cbc49feat: validate luks headers for tampering281584b88chore: update go-kubernetes libraryb86360790fix: add symlinks nvidia-ctk and nvidia-cdi-hook in /usr/bind82fada75fix: unset rlimits for extension services76931f409feat: enforce PID check on connections to services over file socketsdf4e0e7f5feat: update etcd to 3.6.908ba425e6feat: update Kubernetes to 1.36.0-beta.01cb2a8b30fix: update diff library to v1.0.15e171a3detest: fix the apid test against AWS/GCPf98e76f8dfix: panics in diff algorithmsa544aea84release(v1.13.0-beta.0): prepare releasef36f6ef54chore: update pkgs and toolsb7d70cf62feat: unify maintenance and regular APIs13d6b4a03fix: trim down cosign dependencies5c39a8581fix: drop aws & azure KMS APIs from the machined build3d059754cfix: accept image cache volume encryption configd2661d253fix: apparmor parser config files13ef0cfc9fix: unmount pseudo-late recursivelye9d45671afix: panic in hardware.SystemInfoControllera728bbd89fix: validate missing apiVersion in config document decoderc8a674afafix: pull in a fix for dmesg timestampse7e21fe8efeat: bump dependencies6bb5cf57afeat: implement routing rules supporta0b9d6e77feat: bump kernel with uhci_hcd driver1f0d2da39feat: update containerd to 2.2.2cff0f5782fix(machined): support USERDATA legacy fallback in OpenNebula driver5d3a326c8feat(machined): add ONEGATE proxy route and deterministic interface iteration for OpenNebula3bec5cc7bfeat(machined): inherit IP6_METHOD from METHOD in OpenNebula driver4f4ec9806fix(machined): align OpenNebula hostname precedence with reference4d0244ddffeat(machined): add IPv6 alias address support for OpenNebula (ETH*_ALIAS*_IP6)5bb896230feat(machined): support ETH*_IP6_METHOD (static/dhcp/auto/disable) for OpenNebula469db18d3refactor(machined): extract per-interface IPv4 helper in OpenNebula driverae61f5a5efix(machined): use ParseFQDN for hostname parsing in OpenNebula7adbbd2f8feat(machined): support per-interface route metric for OpenNebula (ETH*_METRIC)196658c41feat(machined): add network alias support for OpenNebula (ETH*_ALIAS*)e96766e81feat(machined): merge global and per-interface DNS for OpenNebula23c99a3cbfeat(machined): add static routes support via ETH*_ROUTES for OpenNebulaad3c59aadfix: prevent stale discovered volumes readsfc9749b9efeat: pull in kernel with preemptible kernelc14179e78chore(ci): update nvidia test to use gpu-operatorda70cedfdrefactor: drop apid file socketee53a18c8fix: stop pulling wrong platform for images17335107bfix: use non-sensitive resource for health check precondition2fb6f6a16feat: add symlinks needed by gpu-operatorf2bae55b8feat: enable container device interface451b13c1bfeat: update Linux to 6.18.16a02d578fafeat: add support for mirroring image signatures57599fb87fix: skip some readiness checks when the CNI is disablede6d8669fbfeat: update Go to 1.26.17f2eb4856feat: add image verification endpoint1e4cd20d2feat: add talosctl install command and upgrade via LifecycleService275fa351ctest: add integration tests for LifecycleService upgrade path15a5ec998feat: implement new install/upgrade API720a2148afix: correctly calculate end ranges for nftables sets95287d2dbfix: environment suite failures10f49ca91feat: add trusted roots generation to stdpatches55b872185fix: use correct dhcp option for unicast dhcp renewal58e006461feat: update Kubernetes to 1.36.0-alpha.2ebcfafd4efeat: update Linux to 6.18.150ab84c2a1fix: ignore image digest when doing upgrade-k8sd417d68e0feat: bring in new ssa logic0bb6413fffix: do not fail on RO virtiofsbf2cd0a85feat: update Linux to 6.18.14ad29417aefix(machined): opennebula: process ETH*_ vars regardless of NETWORK context flagb551cb9b8feat: allow dashboard mouse supportbfb98a9cafeat: bump kube-network-policy to v1.0.0000c18d53feat: implement blackhole route configcc636f1ddfix: image cache test fails with 'no space left on device'f0c51b280feat: implement correct config patching for extraArgs fields1da2b63abfeat: multi-doc support for configuring vrfsc1d0a3360fix: patch with delete for LinkConfigs
3 commits
- github.com/bougou/go-ipmi v0.8.1 -> v0.8.3
- github.com/cosi-project/runtime v1.14.0 -> v1.14.1
- github.com/insomniacslk/dhcp 5adc3eb26f91 -> 11b94ed970f2
- github.com/klauspost/compress v1.18.4 -> v1.18.5
- github.com/siderolabs/crypto v0.6.4 -> v0.6.5
- github.com/siderolabs/image-factory v1.0.3 -> v1.2.0
- github.com/siderolabs/omni/client v1.5.8 -> dc3b974d0dad
- github.com/siderolabs/talos v1.13.0-alpha.2 -> v1.13.0
- github.com/siderolabs/talos-metal-agent v0.1.4 -> v0.1.5
- github.com/siderolabs/talos/pkg/machinery 58e006461d30 -> v1.13.0
- github.com/stmcginnis/gofish v0.21.4 -> v0.21.6
- golang.org/x/net v0.52.0 -> v0.53.0
Previous release can be found at v0.9.0
omni-infra-provider-bare-metal 0.9.0 (2026-04-08)
Welcome to the v0.9.0 release of omni-infra-provider-bare-metal!
Please try out the release binaries and report any issues at https://github.com/siderolabs/omni-infra-provider-bare-metal/issues.
The --dhcp-proxy-port flag has been removed. The DHCP proxy now always listens on both port 67 and port 4011 as required by the PXE specification. If you were using --dhcp-proxy-port=4011 to run in proxy DHCP mode, use --disable-dhcp-proxy-broadcast instead.
- Utku Ozdemir
2 commits
- golang.org/x/net v0.51.0 -> v0.52.0
- golang.org/x/sync v0.19.0 -> v0.20.0
- google.golang.org/grpc v1.79.1 -> v1.80.0
Previous release can be found at v0.8.1
omni-infra-provider-bare-metal 0.8.1 (2026-03-03)
Welcome to the v0.8.1 release of omni-infra-provider-bare-metal!
Please try out the release binaries and report any issues at https://github.com/siderolabs/omni-infra-provider-bare-metal/issues.
- Andrey Smirnov
- Mateusz Urbanek
- Noel Georgi
- Kevin Tijssen
- Dmitrii Sharshakov
- Laura Brehm
- Orzelius
- Utku Ozdemir
- Artem Chernyshev
- Edward Sammut Alessi
- Tim Jones
- Bryan Lee
- Max Makarov
- Pranav Patil
- Alexis La Goutte
- Andreas Freund
- Andrei Kvapil
- Christopher Puschmann
- Daddie0
- Daniil Kivenko
- Florian Ströger
- Fritz Schaal
- Jan Paul
- Jonas Lammler
- Justin Garrison
- Lennard Klein
- Matthew Sanabria
- Mickaël Canévet
- Mikolaj Pawlikowski
- Nico Berlee
- Olav Thoresen
- Skye Soss
- Spencer Smith
- Sébastien Masset
- dataprolet
- drew
3 commits
50 commits
f0c7a7brelease(v1.0.3): prepare releasedd92631docs: correct path to hack/copy-artifacts.shddc1a83fix: update Talos to fix rpi_5 buildb3d07e5docs: remove redundant Kubernetes version prerequisite9666795fix: values.schema.json8a8da46feat: adjust security context for user namespace modebc631dcfix: values.schema.json8ea6fe9feat: add user namespace support with Kubernetes version validation324c464fix: skip initializing TUF if keyless signing is disableda42b9d9release(v1.0.2): prepare release80d1ba3fix: pass nameoptions to verify bundle tooeec01d1release(v1.0.1): prepare releaseec1c0a7fix: pass insecure to the cosign new bundle verifier14d0f2arelease(v1.0.0): prepare releasea90529cfeat: add more security contextsec69fe2fix: extra kernel args for overlaysaa325eefeat: add Helm docs and schema3c18e05feat: add Sidero google service account email also to verfiers151feb5fix: docs url42a1c45feat: add helm to kresac4718afeat: update Talos and pkgs1d6468efeat: add helm e2e to CI2f0499cfeat: added e2e tests2eccf98fix: made changes on the recommendation of copilote27ea36feat: Added E2E with KUTTL9f6b9e7feat: Added additional tests4939747feat: Added helm unittestsdcaa1dbfeat: added helmchart1f85622feat: add cloudflare credentials helper852856dfix: installer internal configc8c6576release(v1.0.0-beta.0): prepare release56bd21bfix: allowCache-Controlheader in CORS83f4d91fix: clarify bootloader selectionc8c5faafeat: allow using image GET/HEAD API by the JS code on any domainse732d90feat: support acm for secureboot5f103c1feat: support copying to clipboardc3532c4feat: update Talos with GRUB and other fixesb5ba663fix: avoid pulling Talos core in schematic pkgb2b0cc8fix: update cosign to v3.0.4fca99d0chore: updatedocs/developing.md49f4226chore: separate kres integration-test variables190aa22fix: add missing libarchive dependency37bd795fix: image-factory rootless99cbfd7fix: don't enforce bundle verifiedcf3e56achore: bump talos8723b02fix: drop sbc board supportf0150c4feat: use rootless Image Factoryf57218ffeat: refactor configuration of image factorye440ce7fix: support new cosign bundle format5eb1775feat: introduce Enterprise Image Factory
222 commits
59311a792release(v1.13.0-alpha.2): prepare release009f0d6cachore: update pkgsba56b0295feat: include hid-multitouch.ko kernel module in rootfsae29a0dccfeat: update Linux to 6.18.137cf1de279fix: bring in new version of go-cmd and go-blockdevicec8800b41efix: update path handling on talosctl cgroups0a7b6eb2cchore: test extensions8b1c974a2refactor: drop termui-widgets library5baa0028efix: add owning inventory annotation to talos manifestsd3e793d14fix: stop Kubernetes client from dynamically reloading the certs6a5a0e3bdfeat: support pattern link aliases9758bd4fefeat: update Go to 1.26e00aed0f6feat: update Kubernetes v1.36.0-alpha.1f20445ad0chore: improve logging of disk encryption handlingf018fbe7bfix: handle raw encryption keys with\nproperlye5b0eb017fix: hold user volumes root mountpoint8a0e79774refactor: split locate and provisiona59db0e92fix: improve OpenStack bare metal network configuration reliability659009ad8fix: remove stale endpointsdab0d4783fix: allow static hosts in/etc/hostswithout hostname45f214154feat: update go-kubernetes to use new Myers diff35ad0448cfix: switch to better Myers algorithm implementation0048464befeat: update etcd to v3.6.85df10f260fix: use mcopy instead of diskfs to populate VFATce53ffa90fix: disks flag parsing and handling in create qemu command3bd3dd7cafix: memory overuse in imager VFATf118ee47efix: read multi-doc machine config with newer talosctl70c6c2154feat: add filter for KubeSpan advertised networksdaf18abf4fix: fix talosctl debug in enforcing mode33b5b2565fix: ignore volumes in wave calculation without provisioninga16392559feat: add explicit service account support to Talos client4d531884echore: update dependencies406b8c83cfeat: update doc links to docs.siderolabs.com87615f551feat: implement network policies with Flannel CNI6995bc1b1chore: update homebrew formula on release7942d5a98fix: image gc controller config52e8727d0feat: add IPv6 GRE support9690dbad0chore: bump tools (including linter)2628eb2ecfix: typo with rpi_5 profile named5ebcd7cafix: stop building talosctl debug on Windows8b85c7c63chore: update depsd905035b5fix: swap volume configuration for min/max sized43a01ccbfeat: implementtalosctl debug34a31c979feat: add mount options support for existing volumes1bf95eed1feat: improve dashboard uptime display055add7aerelease(v1.13.0-alpha.1): prepare release900516e68chore: update image signer938de566efeat: bump kernel388cec727feat(overlays): add new overlays9f2dd6312refactor: api testsa90783146feat: add a helper module to generate standard patches1fec5b23dfix: implement merger for PercentageSize8b245b8f2feat: implement new image service APIsd90c775b8chore: rename internaltalosctl debug air-gapped2165280d0refactor: change the way one2many proxying is pickedb1b703dbechore: move sync logging code to go-kubernetes packagee48c6d7abfix: allow to expose a port multiple times in Docker410d8cb57fix: undo CRLF on Windows (talosctl edit)859d3f03cfeat: add RPi5 to the list of supported SBCs0bd48bbc6fix(talosctl): pass --k8s-endpoint flag to rotate-ca kubernetes rotationb9e27ebe7feat: update Linux kernel with dm-integrity6aa9b0677fix: skip empty documents on config decoding494492489fix: always set advertised peer URLs782cc507dfix: open the filesystem as read-only28e61a740fix: set GRUB prefix correctly on arm64a4f1c5239feat: update GRUB to 2.14562920701fix: use node podCIDRs for kubespan advertiseKubernetesNetworks39460365cfeat: implement layering for ProbeSpecb5c760f70feat: add ProbeConfig for network connectivity probes4b274f761feat: support aws cert manager in imager417209512fix: fallback to /proc/meminfo for memory modules7f1147bedfix: add warnings to 802.3ad bondddd6b186erefactor: generate GRUB imagesc7aa266eafix: overwrite resolver config with machine configcf70f05fafix: oracle platform file format8c7b8f5b7feat: add support for negative max size77bc3d21ffix: marshal of FailOverMac property38e280c93fix: make OOM expression a bit less sensitive3d1301640fix: wipe the first/last 1MiB in addition to wiping by signatures1aa6528adfix: make OOM controller more precise by considering separate cgroup PSIf7072c050fix: check if the device is not mounted when wiping743c3b94bfix: use correct containerd import pathf2dd08594feat: report image pull progress in the console72fe98a06fix: boot with GRUBd4ed13d93fix: add talos version to Hetzner Cloud client user agent150c41c30feat: update Linux to 6.18.501a367891fix: use append instead of prepend in service-account-issuerd1954278afeat: add extraArgs from service-account-issuer91b88f7f9feat: support multiple values for extraArgs96e604874fix: add hostname to endpoints7033275a7refactor: move BootloaderKind into machinery71adaf0eafix: sort mirrors and tls configs when generating the machine config34f09a300feat: add VLAN support to OpenStack platform5127ef7c2fix: wipe disk by signatures415bfaedbfix: panic in configpatcher when the whole section is missinge5aca71cdfix: fix healthcheck timeout634b71e2ddocs: move talosctl pcap example to Example Block818492731feat: implement KubeSpan multi-document configuration4d0604b9dchore: remove unrelated machineconfige36863470feat: add it87 hwmon module308c75090fix: resolve SideroLink Wireguard endpoint on reconnecte4ef494defix: drop the persist config flag from gen configc3176adcffeat: add EnvironmentConfig documentc839b3880feat: expose more SSA options in the upgrade-k8s commandb8ff9677efix: handle correctly incomplete RegistryTLSConfig99f2ddadafix: bond config via platform2449ffea4fix: allow HostnameConfig to be used with incomplete machine config35fc52087fix: lock down etcd listen address to IPv4 localhost27253d731feat: use new xfs config filec9d84ae21fix: generate OCI-compliant image config7a4b2b33afix: update VIP config example080efcbdafeat: add k8s-version parameter to k8s-bundleb764f5f72fix: skip sync test when kube-proxy is disabled70e67787dfeat: imager: populate filesystems with root owned files7416dca59fix: print talosctl images to release notesdc2009e47chore: use context when creating filesystems85f7be6e3chore: update slack links154952175fix: disable swap for system servicesd98b415affix: drop more non-overlay SBC stuff226cd6bc1fix: do not allocate for the actual disk image file53f5bf8d2fix: overlay installers10d0cfd93fix: overlay install in image mode77086694dfix: partition data population4d5657b1afix: drop SBC board codec4f3f6d3efeat: implement kubernetes server-side applyf12fd2b0atest: bump Image Factory testsc76484e58release(v1.13.0-alpha.0): prepare releasef0d8a6851test: skip the source bundle on exact tagc57701d65fix: remove interactive installer43937c1cdfeat: update Linux and systemd72a194df8feat: add VM CPU hot-add rulesf09ae1e0dfix: probe small images correctly8f2b33799feat: imager support rootless buildsc7525a97efeat: support creating filesystems from foldere2bffb5cechore: refactor imager code so it's more clear0fb50dbd0fix: invalid versions check in talos-bundleb5dd56032test: upgrade versions in upgrade tests3dfa4d6e4fix: make upgrade work with SELinux enforcing=1786c8e2eefeat: ship pigz/igzip in rootfs to speed up image decompression48d242918feat: update containerd to 2.2.1536541afefix: mount volume mount/unmount race39117d457feat: update dependenciesf0f420725fix: bond setting change detection8d6a7a867feat: update Kubernetes to 1.35.0845a0d09cfeat: update etcd 3.6.7, CoreDNS 1.13.2b95912e04feat: enforceproc_mem.force_override=neverby default681f3e84ctest: run virtiofs tests only when virtiofsd is running0592ff0cdfix: drop the Omni API URL check on IP addressa4879a5fafeat: update Linux to 6.18.143b43ff18docs: split talosctl commands into groups6d17c18bffeat: enable Powercap and Intel RAPL884e76662docs: fix the talosctl cluster create help output6dc31be4ffix: exclude new Virtual IPs configured with new config94905c73efeat(talosctl): support running qemu x86 on Macf871ab241fix: provide json support innftbinary694f45413feat: external volumes39feb16d2fix: update containerd 2.2.0 with cgroups patch82027eb9bfix: bond configuration with new settings121b13b8ffix: disable kexec on arm647eaa725d0fix: selection of boot entry949bdb90afeat: add Secure Boot to CloudStack platform config798143a88fix: discard better klog message from Kubernetes client008cd0986fix: disable kexec in talosctl cluster create on arm64bb62b29edchore: prepare talos for 1.13c0935030achore: fork reference docs for 1.13.xe387e48b3fix: do not override DNS on MacOS1e7e87fb1fix: rework NFT rules for KubeSpan51bcfb567feat: rename image default and source bundle585abe944feat: update Kubernetes to v1.35.0-rc.1f301e3e9bfix: update KubeSpan MSS clamping74c1df6f4test: propagate MTU size to QEMU intalosctl cluster created347ca1affix: update CNI plugins to 1.9.0e3f8196b4chore: update Grype and Syfte1b8ab323docs: add misssing periodcd04c3ddedocs: update release notesfc8ae3249docs: add omni join token example to create qemu command9fa00773cchore: update go-blockdeviceba13b6786fix: correct condition to use UKI cmdline in GRUBd2ce3f47fdocs: drop machine.network examplecf087c1e0test: bird2 extension13df94388fix: adapt SELinuxSuite.TestNoPtrace to new strace version861787c38fix: mark secureboot as supported for metal04e3e87adfix: clean up kubelet mounts21057903afix: clear provisioning data on SideroLink config change0f9f4c05ffeat: update Kubernetes to 1.35.0-rc.0d4309d7b1fix: add a timeout for DNS resolving for NTPdd6c1089cfeat: update Linux to 6.18.0e9a30bf9atest: revert add direct connectivity CA rotation testcc95562bcfix: don't disable LACP by defaultc9fe4679btest: add platform acquire/not valid config unit-test5a03a7a20chore: fix longhorn testa0cfc3527feat: implement logs persistence51b732beafix: selection of boot entry18f8ac369feat: update Kubernetes to 1.35.0-beta.092fa7c5e4chore: update pkgs for NVIDIA 580.105.08f489299b6chore: correct condition for running k8s integration testsab149750dchore: update tools/pkgs to 1.13.0-alpha.087ff9f860test: fix the image-factory test to pass IF endpoint2ffe538e7test: add direct connectivity CA rotation test70f6b80e0chore(ci): skip multipath extension tests561cfb60cchore: update pkgs and tools version2f42202a7fix: simplify OOM expression7b06ae8c2test: fix flaky LinkSpec/Wireguard teste715f3871feat: present kernel log astalosctl logs kernele2ee39b8afix: support specifying patch file without '@' symbole202b1f9efix: trim trailing dots from certificate SANs7f7079f9cfix: assign value of multicast setting properlyeba96141efeat: update etcd to 3.6.69945ceef3docs: add API Server Cipher Suites changelog9ed488d09feat: update TLS cipher suites for API serverf1c04e4d6feat: generate mirrors patcha89108995fix: add CA subject to generated certificate35dd612a5fix: add more resilient move83675838ffeat: extend flags of cache-cert-gen80ab7a064chore: remove spammy 'clean up unused volumes' logs74d35900achore: disable k8s integration tests for 1GiB worker nodes4f6218674feat: support TALOS_HOME env var0c59b3ea3feat: add multicast to linkconfig6db06f4d5feat: implement multicast settingeeded98f5fix: add riscv64 talosctl to release artifactsa6bbae91bfix: fix typos across the project83f2bdb9cfeat: support relative voume size
4 commits
- github.com/cosi-project/runtime v1.13.0 -> v1.14.0
- github.com/insomniacslk/dhcp 175e84fbb167 -> 5adc3eb26f91
- github.com/klauspost/compress v1.18.3 -> v1.18.4
- github.com/pin/tftp/v3 17016b3c2849 -> v3.2.0
- github.com/siderolabs/image-factory v0.9.0 -> v1.0.3
- github.com/siderolabs/omni/client v1.4.7 -> v1.5.8
- github.com/siderolabs/talos v1.12.2 -> v1.13.0-alpha.2
- github.com/siderolabs/talos-metal-agent v0.1.3 -> v0.1.4
- github.com/siderolabs/talos/pkg/machinery v1.13.0-alpha.0 -> 58e006461d30
- github.com/stmcginnis/gofish v0.20.0 -> v0.21.4
- golang.org/x/net v0.49.0 -> v0.51.0
- google.golang.org/grpc v1.78.0 -> v1.79.1
- google.golang.org/protobuf v1.36.11 -> f2248ac996af
Previous release can be found at v0.8.0
omni-infra-provider-bare-metal 0.8.0 (2026-02-05)
Welcome to the v0.8.0 release of omni-infra-provider-bare-metal!
Please try out the release binaries and report any issues at https://github.com/siderolabs/omni-infra-provider-bare-metal/issues.
- Andrey Smirnov
- Noel Georgi
- Mateusz Urbanek
- Amarachi Iheanacho
- Dmitrii Sharshakov
- Orzelius
- Laura Brehm
- Oguz Kilcan
- Justin Garrison
- Utku Ozdemir
- Bryan Lee
- George Gaál
- 459below
- Adrian L Lange
- Aleksandr Gamzin
- Alp Celik
- Andrew Longwill
- Artem Chernyshev
- Chris Sanders
- Christopher Puschmann
- Dmitry
- Edward Sammut Alessi
- Febrian
- Florian Grignon
- Giau. Tran Minh
- Grzegorz Rozniecki
- Jonas Lammler
- Lennard Klein
- Markus Freitag
- Max Makarov
- Michael Smith
- Mike Beaumont
- Misha Aksenov
- MrMrRubic
- Olivier Doucet
- Pranav
- Serge Logvinov
- Skye Soss
- Skyler Mäntysaari
- SuitDeer
- Tom
- aurh1l
- frozenprocess
- frozensprocess
- kassad
- leppeK
- samoreno
- theschles
- winnie
16 commits
fa266e0release(v0.9.0): prepare release6799661feat: show booter command in final wizardfb22bcefeat: support selecting bootloadere881e4bfeat: bump depsd1bec57feat: implement schematic GET APIf1dad9dfeat: better test matrixbc4f959fix: remove secureboot talosctl presetdb5e4dcfeat: add a prompt about usingtalosctl cluster create qemu2c5037cchore: bump deps1559666feat: replace hardcoded artifact image constants with CLI-configurable valuesc27ee27fix: return 400 when an invalid image name is requested58125d4feat: support proxying external installer registryd782950feat: support serving TLS froom Image Factory743fe7ffeat: support disable cosign signature verification3a20123chore: rekres with parallel jobs241963fchore(ci): use runner groups
388 commits
54e5b438drelease(v1.12.2): prepare release30da0bc19fix: oracle platform file format7ddb37b1ffix: make OOM expression a bit less sensitivee438ec23efix: marshal of FailOverMac property717ed7265fix: check if the device is not mounted when wipingc95c9fd06fix: wipe the first/last 1MiB in addition to wiping by signatures52bed358dfix: add talos version to Hetzner Cloud client user agent0e447a431fix: make OOM controller more precise by considering separate cgroup PSI3b974b99efix: sort mirrors and tls configs when generating the machine config8b16fe50bfeat: add VLAN support to OpenStack platformeb8480c4cfix: panic in configpatcher when the whole section is missing4d44306ddfix: wipe disk by signaturescca4cd269feat: add it87 hwmon moduled9480eef2fix: resolve SideroLink Wireguard endpoint on reconnecte16c2d5bbfix: handle correctly incomplete RegistryTLSConfigdedd273dffix: bond config via platformf527cff23fix: allow HostnameConfig to be used with incomplete machine config10918136cfix: lock down etcd listen address to IPv4 localhost9f8d938dbfix: print talosctl images to release notes95433c167fix: update VIP config example919394feefeat: update Go to 1.25.67ea2ef7cfrelease(v1.12.1): prepare release78a785604chore: run rekres and update dependenciesc31067173fix: disable swap for system servicesa7e8426cftest: skip the source bundle on exact tag943984167fix: probe small images correctly42df71637fix: invalid versions check in talos-bundlea3e90e445fix: make upgrade work with SELinux enforcing=1ac91ade2crelease(v1.12.0): prepare release82553b2a1fix: mount volume mount/unmount race33f6e22ecfix: bond setting change detectiond5be50ac5docs: split talosctl commands into groups70d3ab9acfeat: update Kubernetes to 1.35.0101814d88feat: update etcd 3.6.7, CoreDNS 1.13.2ce286825afix: drop the Omni API URL check on IP address96f724adcfeat: enable Powercap and Intel RAPLe195427c1docs: fix the talosctl cluster create help outpute025355b7feat(talosctl): support running qemu x86 on Mac21a914a1dfix: exclude new Virtual IPs configured with new configca645777dfix: provide json support innftbinary6dd0558a3feat: sync pkgsc931847ccfeat: update containerd to v2.1.6a2a77004drelease(v1.12.0-rc.1): prepare release47198780bfix: bond configuration with new settings03a424bdffix: disable kexec on arm64688fb789bfeat: add Secure Boot to CloudStack platform config66e67fd13fix: discard better klog message from Kubernetes clientd8403498cfix: disable kexec in talosctl cluster create on arm645ced4258cfix: do not override DNS on MacOSfabf3f0e7fix: selection of boot entry93cec4b9dfix: update CNI plugins to 1.9.0964098d96fix: update KubeSpan MSS clampingbce04084dfeat: rename image default and source bundled1abc0f84chore: update pkgs061307687release(v1.12.0-rc.0): prepare releasebc4de5b79fix: constants file4a15763a9docs: update release notes297336549fix: correct condition to use UKI cmdline in GRUB0ac58929ddocs: drop machine.network example184a45c40test: bird2 extension8eac9f37ddocs: add omni join token example to create qemu commande79a94d57fix: adapt SELinuxSuite.TestNoPtrace to new strace version7a1bb4c26fix: mark secureboot as supported for metal5c6ee6acefix: clear provisioning data on SideroLink config change2e6fe4684feat: update Linux to 6.18.0473bc17c1feat: update Kubernetes to 1.35.0-rc.06dc8e82b3fix: add a timeout for DNS resolving for NTPa7dbbbd4dfix: don't disable LACP by default3ca342c09chore: fix longhorn test364ebb6bafix: selection of boot entryaa286d3f6feat: update Kubernetes to 1.35.0-beta.0f4891eebbfeat: implement logs persistencec9a4f95b4release(v1.12.0-beta.1): prepare released321d7da0chore: correct condition for running k8s integration tests736f32a80chore: disable k8s integration tests for 1GiB worker nodesd9de616c4chore(ci): skip multipath extension tests57d6683cdchore: update pkgs and tools version949323ab5feat: present kernel log astalosctl logs kernel7531fcbc7test: fix flaky LinkSpec/Wireguard test1dbc64d69fix: simplify OOM expression0ffb1d857fix: trim trailing dots from certificate SANs9a2f6d9c9fix: support specifying patch file without '@' symbol582b0feabfix: assign value of multicast setting properly16aa6ac47feat: update etcd to 3.6.64396f09c8docs: add API Server Cipher Suites changelogfdf6fe8e6feat: update TLS cipher suites for API server139cce3b4fix: add CA subject to generated certificate9b294af22feat: generate mirrors patch15465f0c5fix: add more resilient moveb4147e3a1feat: extend flags of cache-cert-gen72d3d1c9fchore: remove spammy 'clean up unused volumes' logsd6c78de84feat: support TALOS_HOME env var4040e0814feat: implement multicast settingeb636dc1ffeat: add multicast to linkconfige34e458c4feat: update dependencies36152d278fix: add riscv64 talosctl to release artifactsaebbbaf27feat: support relative voume size3d997d742release(v1.12.0-beta.0): prepare releasee62384ba3fix: re-creating STATE after partition drop6919d232adocs: update kernel args size887b296dctest: randomize MAC addresses used in the unit-tests6063fbf91feat: update dependencies542a67a06feat: add riscv64 build of talosctl68560b53afix: split volume/disk locators2c3d30e94docs: fix image-cache-path flag description93f2e87c2feat: shorthand for generating secrets to stdout5e1de0035feat: implement time and resolvers multi-doc configuration399240be3feat: drop partitions on reset with system partitions wipe5cca96655feat: add new rockchip sbcs00fe50d86fix: uefi bootorder setting3a881184bchore: improve error handling for system disk reset859194e67chore: extract system+user volume config transformers, test308c6bc41feat: add full disk volumes82ac1119efeat: implement new registry configuration106f45799feat: update Linux kernel with userfaultfd/VDPA721a1e0d7chore: rename+improveclient.ErrEventNotSupported43f4e317ffix: race between VolumeConfigController and UserVolumeConfigController66c01a706chore: deprecate interactive installer mode957770f65feat(machined): add panic/force mode reboot60be0daf8feat: implement multi-doc Wireguard configcf014cb5dfix: only set default bootloader if none is sete9b016f80fix: use strict platform match when pulling imagesfafab391bfeat: update Kubernetes to 1.35.0-alpha.37bf3aaca9feat: allow glibc aarch64 so files in extensionsc8561ee2dfeat: implement bridge multi-document configf4ad3077bfeat: implement bond multi-doc configuration75fe47582fix: stop attaching to tearing down mount parentsc93a9c6b4fix: improve OOM controller stability and make test strict on false positives021bbfefbfeat: update Go 1.25.4, containerd 2.1.5e25db484ftest: disable parallelism in Longhorn tests54b93aff0feat: update Linux 6.17.7, runc 1.3.32af69ff35fix: provide minimal platform metadata always92eeaa482fix: update YAML libraryaa24da9aafix: bump kubelet credendial provider config to v1335f91761feat: add short -c flag for --cluster4c095281bfix: set a timeout for SideroLink provision API call75e4c4a59fix: log duplication on log senderse3cbc92c0fix: add video kernel module to armd69305a67fix: userspace wireguard handlingee5fee7c8fix: image-signer commandsbe028b67afeat: add support for multi-doc VLAN configf3df0f80bfeat: add directory backed UserVolumes0327e7790feat: add support for dashboard custom console parameterfed948b8arelease(v1.12.0-alpha.2): prepare releasefb4bfe851chore: fix LVM testf4ee0d112chore: disable VIP operator test288f63872feat: bump depsb66482c52feat: allow disabling injection of extra cmdline in cluster create704b5f99efeat: update Kubernetes to 1.35.0-alpha.21dffa5d99feat: implement virtual IP operator config43b1d7537fix: validate provisioner when destroying local clustersb494c54c8fix: talos import on non-linux61e95cb4bfeat: support bootloader option for ISOd11072726fix: provide offset for partitions in discovered volumes39eeae963feat: update dependencies9890a9a31test: fix OOM testc0772b8edfeat: add airgapped mode to QEMU backed talosac60a9e27fix: update test for PCI driver rebind/IOMMU6c98f4cdbfeat: implement new DHCP network configurationda92a756dfix: drop 'ro' falg from defaults28fd2390cfix: imager build on arm644e12df8c5test: integration test for OOM controller7e498fabafeat: use image signereccb21dd3feat: add presets to the 'cluster create qemu' commandec0a813fafeat: unify cmdline handling GRUB/systemd-boot37e4c40c6fix: skip module signature tests on docker provisioner only8124efb42fix: cache e2e4adcda0f5fix: reserve the apid and trustd ports from the ephemeral port rangeced57b047feat: support optionally disabling module sig verification1e5c4ed64fix: build talosctl image cache-serve non-linuxdbdd2b237feat: add static registry to talosctl77d8cc7c5chore: pushlatesttag only on main59d9b1c75feat: update dependenciesbf6ad5171feat: add back install scriptda451c5bachore: drop documentation except for fresh reference2f23fedebfix: file leak in reading cgroupsb412ffdbcdocs: update README.md for docs link8dc51bae7feat: add drm_gpuvm and drm_gpusvm_helper modules4ca58aeb8fix: make Akamai platform usable061f8e76ffeat: bump pkgsa9fa852dafeat: update uefi image to talos linux logo04753ba69feat: update go to 1.25.29a42b05bdfeat: implement link aliasingd732bd0bechore(ci): run only nvidia tests for NVIDIA workflows8d1468209fix: stop populating apiserver cert SANs02473244cfix: wait for mount status to be proper mode825622d90fix: resource proto definitions2c6003e79docs: add Project Calico installation in two mode4fb4c8678feat: add disk.EnableUUID to generated ova33fb48f8ffix: add dashboard spinner053fd0bd4feat: update Linux to 6.1734e107e1bdocs: fix broken linkdfbece56bdocs: update the kubespan docs8b041a72cdocs: update scaleway.md435dcbf82fix: provide nocloud metadata with missing network configec3bd878frefactor: remove the go-blockdevice v1 completely33544bde9fix: minor improvements to fsfd2eebf7ffeat: create merge patch from diff of two machine configseadbdda94fix: uefi boot order settingcd9fb2743fix: support secure HTTP proxy with gRPC dialadf87b4b9feat: update Flannel to v0.27.45dfb7e1fefeat: serve etcd image from registry.k8s.io5ca841804fix: nftables flaky testa940e45a7feat: generate list of images required to build talos3472d6e79fix: revert "chore: use new mount/v3 package in efivarfs"42c0bdbf3feat: add provisioner flag to images default command6bc0b1bcffeat: drop and lock deprecated features362a8e63bfix: change the compression format6e58f58aafix: mkdir artifacts path3165a2b84release(v1.12.0-alpha.1): prepare releasee455c7ea9chore: use testing/synctest in tests7f048e962feat: update dependenciesfe36b3d32fix: stop returning EINVAL on remount of detached mountsc6279e04cchore: use new mount/v3 package in efivarfsd5197effbfeat: update etcd 3.6.5, CoreDNS 1.12.433714b715feat: release cloud image using factoryd10a2747edocs: deprecate JSON6902 patches and interactive installer1e604cbf5fix: don't set broadcast for /31 and /32 addresses65a66097arefactor: split cluster create logic into smaller partsab847310efix: provide refreshing CA pool (resolvers)d63c3ed7ddocs: update secureboot docs493f7ed9dfeat: support embedded config251df70f6feat: add a userspace OOM controller7bae5b40bfeat: implement link configuration724857decfix(ci): skip netbird extension for testse06a08698fix: default gateway as string7ed07412efix: uefi boot entry handling logicea4ed165arefactor: efivarfs mock and tests1fca111e2feat: support setting wake-on-lan for Ethernet94f78dbe7docs: add a documentation for running Talos in KVM46902f8fddocs: add TrueFullstaq to adoptersa28e5cbd5chore: update pkgs and tools7cf403db8docs: step-by-step scaleway documentation to get an image687285fa2docs: remove 'curl' in wget command9db6dc06cfeat: stop mounting state partition53ce93aaetest: try to clear connection refused more aggressively51db5279cfix: bump trustd memory limit25204dc8afix(machined): changeconstants.MinimumGOAMD64Levelusing build tag9cd2d794dfeat: ship nft binary with Talos rootfsb1416c9fefeat: record last log the failed service0b129f9effeat: enforce more KSPP and hardening sysctls11872643cchore: drop docs folderd30fdcd88chore: pass in github token to imagerb88f27d80chore: make reset test code a bit better1cde53d01test: fix several issues with tests16cd127a0docs: add docs on updating image cachec3ae92b14fix: build kernel checks only on linux2120904ecfeat: create detached tmpfs6bbee6de5docs: remove 'ceph-data' from volume examples/docs07acb3bd2fix: use correct order to determine SideroV1 keys directory path2d57fa002fix: trim zero bytes in the DHCP host & domain response451cb5f78docs: clarify disk partition confusiona2122ee5cfeat: implement HostConfig multi-doc69ab076b4fix: re-create cgroups when restarting runners297b5cc28docs: add docs on node labelse168512ddfix: apply 'ro' flag to iso9660 filesystems7f7acfbb9docs: fix typo in docd57882b18feat: update Kubernetes to 1.34.1f85f82f32test: fix flakiness in RawVolumes test82569e319feat: update Linux 6.16.62fd2ab4e4fix: remove CoreDNS cpu limitce9bc32a0chore(ci): rekres to use new runner groups8b64f68f6test: improve test stability272cb860dchore: drop the --input-dir flag from the cluster create command1b6533675docs: add note about ca-signed certs for securebootd3f88f50cdocs: document talos vip failover behavior005fc8bd5docs: add docs on syncing configs after a kube upgrade4d876d9affeat: update Go to 1.25.12b556cd22feat: implement multi-doc StaticHostConfiga7b776842docs: replace Raspberry Pi 5 links with Talos buildera349b20eddocs: clarify that talos does not support intermediate ca895133de9feat: support configuring PCR states to bind disk encryptionc1360103bdocs: fix command for uploading image on Hetzner43b5b9d89fix: correctly handle status-code 204feeb0d312feat: update runc to 1.3.1421634a14docs: add docs on multihoming41af2d230refactor: clean up internal cluster creation code3000d9e43fix: don't bootstrap talos cluster if there's no config present79cb871d0feat: use the id of the volume in the mapped luks2 name6c322710dchore: refactor mount packageced7186e2refactor: update COSI to 1.11.0de2e24fcddocs: clarify that install-cni image is deprecatedbef8ef509docs: add docs on cilium's compatibility with kubespane5acb10fcfeat: update pkgsc4c1daf0edocs: add info about br_netfilter5c52ecac3docs: clarify interactive dashboard resolution control15ecb02a4feat: update Linux kernel (memcg_v1, ublk)53f18c2f6fix: enable support for VMWare arm643bbe1c0dadocs: add docs on grow flagb9fb09dcdrelease(v1.12.0-alpha.0): prepare release6a389cad3chore: update dependencies9d98c2e89feat: add a cgroup preset for PSI and --skip-cri-resolve072f77b16chore: prepare for future Talos 1.12-alpha.0 release96f41ce88docs: update qemu and docker docsa751cd6b7docs: activate Talos v1.11 docs by defaulte8f1ec1c5docs: fix broken create qemu command v1.11 docs639f0dfddfeat: update Linux to 6.16.48aa7b3933fix: bring back linux/armv7 build and update xz9cae7ba6bfeat: update CoreDNS to 1.12.3cfef3ad45fix: drop linux/armv7 build42ea2ac50fix: update xz module (security)4fcfd35b9docs: fix module name example50824599achore: update some toolsbcd297490feat: allow Ed25119 in FIPS mode5992138bbtest: ignore one leaking goroutined155326c1docs: add sbc unofficial ports docs285fa7d22docs: add the deploy application docs527791f09feat: update Kubernetes to 1.34.0a1c0e237dfeat: update Linux to 6.15.11, Go to 1.254d7fc25f8docs: switch order of wipe disk command7368a994dfeat: add SOCKS5 proxy support to dynamic proxy dialerd63591069chore: silence linter warnings07eb4d7ecfix: set default ram unit to MiB instead of MB6b732adc4feat: update Linux to 6.12.43b6410914ffeat: add human readable byte size cli flagsec70cef99feat: update NVIDIA drivers and kernel0879efa69feat: update Kubernetes default to v1.34.0-rc.2f504639dffeat: add a user-facing create qemu command558e0b09atest: fix the Image Factory PXE boot testd73f0a2e5docs: make readme badges consistentf1369af98chore: use new filesystem api on STATE partition366cedbe7docs: link to kubernetes linux swap tuning2f5a16f5efix: make --with-uuid-hostnames functionality available to qemu provider70612c1f9refactor: split the PlatformConfigController511748339docs: add system extension tier documentation009fb1540test: don't run nvidia tests on integration/aws99674ef20docs: apply fixes for what is new92db677b5fix: image cache lockup on a missing volume9c97ed886fix: version contract parsing in encryption keys handling1fc670a08fix: dial with proxy18447d0affeat: update Linux to 6.12.41f65f39b78fix: provide mitigation CVE-1999-05248817cc60cfix: actually use SIDEROV1_KEYS_DIR env var if it's providedb08b20a10feat: use key provider with fallback option for auth type SideroV17a52d7489fix: kubernetes upgrade options for kubeletea8289f55feat: add a user facing docker command54ad64765chore: re-enable vulncheck26bbddea9fix: darwin buildb5d5ef79efix: set secs field in DHCPv4 packetsc07911933chore: refactor how tools are being installed34f25815cdocs: fork docs for v1.12b66b995d3feat: update default Kubernetes to v1.34.0-rc.1b967c587ddocs: fix clone URL to include.gitb72c68398docs: edit the insecure, etcd-metrics, inline and extramanifestse5b9c1fffdocs: remov RAS Syndrome701fe774bdocs: fix cilium links and bump to 1.18.0d306713a1feat: update Go to 1.24.6721595a00chore: add deadcode elimination linterdc4865915refactor: stop usingtext/templateinmachinedcode paths545be55edfeat: add a pause function to dashboard06a6c0fe3refactor: fix deadcode elimination with godbus2dce8f8d4refactor: replace containerd/containerd/v2 module for proper DCE9b11d8608chore: rekres to configure slack notify workflow for CI failures5ce6a660fdocs: augment the pod security docsada51ff69fix: unmarshal encryption STATE from METAb9e9b2e07docs: add what is new notes for 1.1153055bdf4docs: fix typo in kubevirt page8d12db480fix: one more attempt to fix volume mount race on restart34d37a268chore: rekres to use correct slack channel for slack-notify326a00538feat: implementtalos.config.earlycommand line arga5f3000f2feat: implement encryption locking to STATEc1e65a342docs: remove talos API flags from mgmt commands181d0bbf5feat: bootedentry resource7ad439ac3fix: enforce minimum size on user volumes if not set explicitly50e37aefdfix: live reload of TLS client config for discovery client87efd75effeat: update containerd to 2.1.4724b9de6dfeat: add F71808E watchdog driver8af96f7afdocs: add ETCD downgrade documentation44edd205ddocs: add remark about 'exclude-from-external-load-balancers' label727101926fix(ci): use a random suffix for ami namesd621ce372fix: grype scand62e255c2fix: issues with reading GPT5d0883e14feat: update PCI DB module to v0.3.23751c8ccftest: wait for service account test job longera592eb9f9feat: update Linux to 6.12.404c40e6d3ffeat: update etcd to 3.6.42bc37bd2cdocs: fix error in kernel module guidebfc57fb86chore: tag aws snapshots created via ci with the image name06ef7108afix: issue with volume remount on service restart03efbff18docs: add SBOM documentationaf8a2869dfix: do not download artifacts for cron Grype scan5f442159bfeat: unify disk encryption configuration38e176e59chore(ci): fix datasource versioning85d6b9198feat: update etcd to v3.5.22dd7bd2dabdocs: rewrite the getting started and prod docs for v1.10 and v1.11136a899aachore: regenerate release step with signing fixes450b30d5achore(ci): add more nvidia test matrix451c2c4c3test: add talosctl:latest to the image cache
- github.com/bougou/go-ipmi v0.7.8 -> v0.8.1
- github.com/cosi-project/runtime v1.12.0 -> v1.13.0
- github.com/klauspost/compress v1.18.1 -> v1.18.3
- github.com/planetscale/vtprotobuf 79df5c4772f2 -> ba97887b0a25
- github.com/siderolabs/image-factory v0.8.4 -> v0.9.0
- github.com/siderolabs/omni/client v1.3.2 -> v1.4.7
- github.com/siderolabs/talos v1.11.5 -> v1.12.2
- github.com/siderolabs/talos/pkg/machinery v1.12.0-beta.0 -> v1.13.0-alpha.0
- github.com/spf13/cobra v1.10.1 -> v1.10.2
- go.uber.org/zap v1.27.0 -> v1.27.1
- golang.org/x/net v0.47.0 -> v0.49.0
- golang.org/x/sync v0.18.0 -> v0.19.0
- google.golang.org/grpc v1.76.0 -> v1.78.0
- google.golang.org/protobuf v1.36.10 -> v1.36.11
Previous release can be found at v0.7.1
omni-infra-provider-bare-metal 0.7.1 (2025-12-02)
Welcome to the v0.7.1 release of omni-infra-provider-bare-metal!
Please try out the release binaries and report any issues at https://github.com/siderolabs/omni-infra-provider-bare-metal/issues.
- Utku Ozdemir
This release has no dependency changes
Previous release can be found at v0.7.0
omni-infra-provider-bare-metal 0.7.0 (2025-11-17)
Welcome to the v0.7.0 release of omni-infra-provider-bare-metal!
Please try out the release binaries and report any issues at https://github.com/siderolabs/omni-infra-provider-bare-metal/issues.
- Andrey Smirnov
- Mateusz Urbanek
- Noel Georgi
- Utku Ozdemir
- Justin Garrison
- Laura Brehm
2 commits
15 commits
bc34de6e1release(v1.11.5): prepare release3945c6c8ffeat: update containerd to 2.1.58aec37684release(v1.11.4): prepare release9c27f9e62fix: race between VolumeConfigController and UserVolumeConfigControllerac27129b1fix: provide minimal platform metadata always19463323efix: image-signer commands62aa09644chore: update dependencies075f9ef22fix: userspace wireguard handling35b97016cfix: log duplication on log sendersd00754e35fix: add video kernel module to arm89bca7590fix: set a timeout for SideroLink provision API call23b21eb90fix: imager build on arm642a4f1771cfeat: use image signere043e1bc0chore: pushlatesttag only on main8edddafcdfix: reserve the apid and trustd ports from the ephemeral port range
- github.com/cosi-project/runtime v1.11.0 -> v1.12.0
- github.com/grpc-ecosystem/go-grpc-middleware/v2 v2.3.2 -> v2.3.3
- github.com/insomniacslk/dhcp da879a2c3546 -> 175e84fbb167
- github.com/klauspost/compress v1.18.0 -> v1.18.1
- github.com/siderolabs/gen v0.8.5 -> v0.8.6
- github.com/siderolabs/omni/client v1.2.1 -> v1.3.2
- github.com/siderolabs/talos v1.11.3 -> v1.11.5
- github.com/siderolabs/talos/pkg/machinery v1.11.3 -> v1.12.0-beta.0
- golang.org/x/net v0.46.0 -> v0.47.0
- golang.org/x/sync v0.17.0 -> v0.18.0
Previous release can be found at v0.6.0
omni-infra-provider-bare-metal 0.6.0 (2025-11-07)
Welcome to the v0.6.0 release of omni-infra-provider-bare-metal!
Please try out the release binaries and report any issues at https://github.com/siderolabs/omni-infra-provider-bare-metal/issues.
- Utku Ozdemir
This release has no dependency changes
Previous release can be found at v0.5.0
omni-infra-provider-bare-metal 0.5.0 (2025-10-17)
Welcome to the v0.5.0 release of omni-infra-provider-bare-metal!
Please try out the release binaries and report any issues at https://github.com/siderolabs/omni-infra-provider-bare-metal/issues.
- Andrey Smirnov
- Mateusz Urbanek
- Noel Georgi
- Dmitrii Sharshakov
- Oguz Kilcan
- Utku Ozdemir
- Alp Celik
- Amarachi Iheanacho
- Andrew Longwill
- Chris Sanders
- Grzegorz Rozniecki
- Markus Freitag
- Olivier Doucet
- Orzelius
- Serge Logvinov
3 commits
20 commits
a3a7661release(v0.8.4): prepare release075aa3ffix: update Talos to 1.11.102723cdfix: translation ID94c6df1release(v0.8.3): prepare release7254abffix: disable redirects to PXE251aee0release(v0.8.2): prepare release418eebbfix: don't filter outrcversions57ad419release(v0.8.1): prepare release6392086fix: prevent failure on cache.Geta1e3707feat: add fallback if S3 is missbehaving9760ab0release(v0.8.0): prepare release7c6d261fix: set content-disposition on S3f3e97dfdocs(image-factory): add info about S3 cache and CDNd25e7acfix: add extra context to logs from s3 cachea3a0dfffix: add optional region to S3 clienta9e2d08feat: add support for Object Storage and CDN cacheb8bfc19docs: add air-gapped documentationf8b4ef0docs: add new translation0c83228release(v0.7.6): prepare release6f409ecfix: drop extractParams function
92 commits
a0243ef77release(v1.11.3): prepare release560241c00fix: make Akamai platform usable1b23cad61fix: cherry-pick of commit0fbb0b0from #11959876719a92fix: cherry-pick of commitcd9fb27from #119439a30ab6f5feat: bump go, kernel and runc0fbb0b028fix: provide nocloud metadata with missing network config0dad32819feat: update Flannel to v0.27.449182b386fix: support secure HTTP proxy with gRPC diala460f5726feat: update etcd 3.6.5, CoreDNS 1.12.448ee8581bfix: don't set broadcast for /31 and /32 addresses7668c52ddfix: provide refreshing CA pool (resolvers)511b4d2e8release(v1.11.2): prepare releaseac452574efix: default gateway as string7cec0e042fix: uefi boot entry handling logic637154ed2docs: drop invalid v1.12 docsa6d2f65a6chore(ci): rekres to use new runner groupscd82ee204refactor: efivarfs mock and tests996d97de6chore: update pkgsbbf860c5cdocs: update component updates24c1bcecffix: bump trustd memory limit56d6d6f75chore: pass in github token to imager682df89d7fix: use correct order to determine SideroV1 keys directory patha838881fafix: trim zero bytes in the DHCP host & domain response9c962ae9cfix: re-create cgroups when restarting runnersde243f9aetest: fix flakiness in RawVolumes testec8fde596feat: update Kubernetes to 1.34.1797897dfbtest: improve test stability98273666efeat: update runc to 1.3.18e85c8362release(v1.11.1): prepare releaseff8644cd2fix: correctly handle status-code 2047d5fe2d0ffeat: update Linux kernel (memcg_v1, ublk)9e310a9ddfix: enable support for VMWare arm64f7620f028feat: update CoreDNS to 1.12.301bf2f6f9feat: add SOCKS5 proxy support to dynamic proxy dialer8a578bc4afeat: update Linux to 6.12.45d9d89a3a8release(v1.11.0): prepare release364b48690feat: update pkgs/tools for pcre2 10.46be70ea03ffeat: update pkgs for NVIDIA prod 570.172.08a5f80b4fefix: bring back linux/armv7 build and update xz751dae432fix: drop linux/armv7 build8cbd75320fix: update xz module (security)803ed1ef9feat: update Kubernetes to 1.34.0a80898da9feat: update Linux to 6.12.4330c14aa71feat: update Kubernetes default to v1.34.0-rc.2ed7d8cbacdocs: link to kubernetes linux swap tuning1ee82120edocs: apply fixes for what is new36102eae1release(v1.11.0-rc.0): prepare release0f22913d9fix: image cache lockup on a missing volume46cf25c7cfeat: update Linux to 6.12.4162f6c97fefix: provide mitigation CVE-1999-0524350319063fix: actually use SIDEROV1_KEYS_DIR env var if it's provided430a27dc2fix: kubernetes upgrade options for kubelete3a9097c4fix: set secs field in DHCPv4 packetsbabddd0e4fix: dial with proxy23efda4dbfeat: use key provider with fallback option for auth type SideroV1e2a5a9b3fchore: re-enable vulncheckf5d700a0crelease(v1.11.0-beta.2): prepare release6186d1821chore: disable vulncheck temporarilye4a2a8d9cfeat: update default Kubernetes to v1.34.0-rc.14c4236d7efeat: update Go to 1.24.6a01a390f6chore: add deadcode elimination linter49fad0edefeat: add a pause function to dashboard21e8e9dc9refactor: replace containerd/containerd/v2 module for proper DCEbbd01b6b7refactor: fix deadcode elimination with godbuse8d9c81ccrefactor: stop usingtext/templateinmachinedcode paths85589662afix: unmarshal encryption STATE from METAf10a626d2docs: add what is new notes for 1.115a15ce88brelease(v1.11.0-beta.1): prepare release614ca2e22fix: one more attempt to fix volume mount race on restart4b86dfe6ffeat: implement encryption locking to STATE8ae76c320feat: implementtalos.config.earlycommand line arg19f8c605edocs: remove talos API flags from mgmt commandsfa1d6fef8feat: bootedentry resource7dee810d4fix: live reload of TLS client config for discovery clienta5dc22466fix: enforce minimum size on user volumes if not set explicitly7836e924dfeat: update containerd to 2.1.45012550ecfeat: add F71808E watchdog driver10ddc4cddfix: grype scand108e0a08fix(ci): use a random suffix for ami names504225546fix: issues with reading GPTbdaf08dd4feat: update PCI DB module to v0.3.2667dcebectest: wait for service account test job longerae176a4b7feat: update etcd to 3.6.4201b6801ffix: issue with volume remount on service restart2a911402bchore: tag aws snapshots created via ci with the image named8bd84b56docs: add SBOM documentation7eec61993feat: unify disk encryption configuration4ff2bf9e0feat: update etcd to v3.5.2231a67d379fix: do not download artifacts for cron Grype scanc6b6e0bb3docs: rewrite the getting started and prod docs for v1.10 and v1.11ca1c656e6chore(ci): add more nvidia test matrix7a2e0f068feat: sync pkgs, update Linux to 6.12.40
- github.com/bougou/go-ipmi v0.7.7 -> v0.7.8
- github.com/cosi-project/runtime v1.10.7 -> v1.11.0
- github.com/insomniacslk/dhcp 5f8cf70e8c5f -> da879a2c3546
- github.com/pin/tftp/v3 v3.1.0 -> 17016b3c2849
- github.com/siderolabs/crypto v0.6.3 -> v0.6.4
- github.com/siderolabs/image-factory v0.7.5 -> v0.8.4
- github.com/siderolabs/omni/client da3f28f6b1f0 -> v1.2.1
- github.com/siderolabs/talos v1.11.0-beta.0 -> v1.11.3
- github.com/siderolabs/talos/pkg/machinery v1.11.0-beta.0 -> v1.11.3
- github.com/spf13/cobra v1.9.1 -> v1.10.1
- github.com/stretchr/testify v1.10.0 -> v1.11.1
- golang.org/x/net v0.42.0 -> v0.46.0
- golang.org/x/sync v0.16.0 -> v0.17.0
- google.golang.org/grpc v1.74.2 -> v1.76.0
- google.golang.org/protobuf v1.36.6 -> v1.36.10
Previous release can be found at v0.4.0